1. When setting size limit on jails does that space include nullfs mounted directories such as /usr/ports?

2. In BHyVe, is it possible to run a Linux vm and pass a network interface through to allow for security monitoring with tools such as Snort or Bro IDS? If so, what kind of performance hit should be expected since capturing all packets is important with these types of applications?

3. In pfSense, is it possible to create an interface that would behave like a SPAN or mirrored port on a switch? I know this may not be possible from the web GUI but I am not afraid to attempt this via the CLI.